CVE-2025-5399 | cURL 8.13.0/8.14.0 WebSocket lib/ws.c curl_ws_send infinite loop (d1145df24de8f80e6b16 / EUVD-2025-17371)
A vulnerability labeled as problematic has been found in cURL 8.13.0/8.14.0. The impacted element is the function curl_ws_send of the file lib/ws.c of the component WebSocket Handler. The manipulation results in infinite loop.
This vulnerability is identified as CVE-2025-5399. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.